Security News Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session Persistence TheHackerNews Daniel Bender Apr 15, 2025 Apache Roller flaw CVE-2025-24859 keeps sessions active after password changes, risking persistent access.